Peter C @itspeterc
Security Engineer Black Lives Matter peterc.ollins.me Washington, DC Joined November 2011-
Tweets796
-
Followers1K
-
Following600
-
Likes44K
A recent security issue announced by Salesloft has impacted many companies, including Cloudflare. This post provides a timeline of the attack, details our response, and offers security recommendations to help other organizations mitigate the effects of this attack.…
Over the years, I've made a conscious effort to always speak to the "why", even when not directly asked. If I'm providing a recommendation on what to do, I need to also say why I think it is right. If I'm explaining what something is, I need to also explain why it is significant.
Sorry cybersecurity mutuals, I really want to engage with your posts, but I have no idea what y’all are talking about half the time, and I just realized that’s because it’s about Windows. And sorry but I’m not learning that.
* a thousand leaked Github tokens * dozens of npm tokens and cloud credentails * 20k files, identified by AI for exfiltration All spread publicly on Github by malware implanted in `nx` check out our blog for details: wiz.io/blog/s1ngulari…
If you are in a large org, The #1 most useful thing you can do in security when given a seemingly crazy task you have to accomplish, is go back down the chain and find the original requirement the task came from. Then read it carefully. 1/2
That time when @tehjh was just reviewing a new Linux kernel feature, found a security vuln, then went on a journey to see if he could exploit it from inside the Chrome Linux Desktop renderer sandbox (spoiler: very yes) googleprojectzero.blogspot.com/2025/08/from-c…
we hijacked microsoft's copilot studio agents and got them to spill out their private knowledge, reveal their tools and let us use them to dump full crm records these are autonomous agents.. no human in the loop #DEFCON #BHUSA @tamirishaysh
The whitepaper is live! Learn how to win the HTTP desync endgame... and why HTTP/1.1 needs to die: http1mustdie.com
We (+@ronenshh) hacked NVIDIA's Triton AI server by abusing a single error message🚨 The result is unauthenticated RCE allowing attackers to compromise the server and steal proprietary AI models🤯 For more details & mitigations check out our blog @wiz_io wiz.io/blog/nvidia-tr…
Turns out you can just hack any train in the USA and take control over the brakes. This is CVE-2025-1727 and it took me 12 years to get this published. This vulnerability is still not patched. Here's the story:
Turns out you can just hack any train in the USA and take control over the brakes. This is CVE-2025-1727 and it took me 12 years to get this published. This vulnerability is still not patched. Here's the story:
Orange Meets, our open-source video calling web application, now supports end-to-end encryption using the MLS protocol with continuous group key agreement. cfl.re/45Cji79
Breaking WebAuthn, FIDO2, and Forging Passkeys by @vmfunc nullpt.rs/forging-passke…
I was briefed on the intelligence last week. Iran posed no imminent threat of attack to the United States. Iran was not close to building a deliverable nuclear weapon. The negotiations Israel scuttled with their strikes held the potential for success.
😈 BEWARE: Claude 4 + GitHub MCP will leak your private GitHub repositories, no questions asked. We discovered a new attack on agents using GitHub’s official MCP server, which can be exploited by attackers to access your private repositories. creds to @marco_milanta (1/n) 👇
I'm often asked if I'll redo the 2019 quantum factoring estimate. Denser storage by yokes, smaller magic factories by cultivation, slimmer approx arithmetic by Chevignard et al… surely the cost is lower now? Yes, it's lower now. security.googleblog.com/2025/05/tracki… arxiv.org/abs/2505.15917
BREAKING: Internal #DeepSeek database publicly exposed 🚨 Wiz Research has discovered "DeepLeak" - a publicly accessible ClickHouse database belonging to DeepSeek, exposing highly sensitive information, including secret keys, plain-text chat messages, backend details, and logs.
New blog post with @infosec_au: We found a vulnerability in Subaru where an attacker, with just a license plate, could retrieve the full location history, unlock, and start vehicles remotely. The issue was reported and patched. Full post here: samcurry.net/hacking-subaru
We blogged again! This time about our Data Safety Levels framework, which was inspired by the CDC/WHO Biosafety Levels system and Laboratory Biosafety Manuals. Like biological agents, we also don't want sensitive data to be exposed to humans or escape. code.cash.app/dsl-framework
I couldn't find any good games for my password manager. So I made one. 1Crossword connects to your 1Password vault and generates a crossword entirely out of your passwords! The crosswords are fun, simple, and great for sharing on social media when you finish. Enjoy!

Scott Piper @0xdabbad00
19K Followers 317 Following https://t.co/EXe2MI2DLm Cloud security historian. Developed https://t.co/ZXFwkuxUp4, CloudMapper, and Parliament. Organizer for @fwdcloudsec. Researcher at @wiz_io ✦
haroon meer @haroonmeer
16K Followers 3K Following Security Geek at Thinkst. We build https://t.co/Sv6Gp3sG6b
Matt Fuller @matthewdfuller
2K Followers 1K Following 💭 Building https://t.co/qF4lN20a4l (better AWS console), https://t.co/dRqqZlMIFL ("open in AI" links) 🛡️ Cloud Security EM @Stripe 🤝 Ex-Founder @CloudSploit_ (sold)
Travis McPeak @travismcpeak
3K Followers 1K Following Security, mgmt, startups, investing, 🏋️♂️, 🚵. Founder/CEO @Resourcely prev: @databricks, @netflix; He.
Dylan @InsecureNature
3K Followers 236 Following Security researcher, public speaker and founder. Forbes 30 Under 30 Truffle Security @trufflesec https://t.co/vxEH7Cftbg Prev @Netflix
Jason Craig - infosec... @3141592f
797 Followers 674 Following Extremely Hardcore full spectrum middle manager. ex red team, blue team @ Pinterest, Dropbox , Facebook, Yahoo!, etc⚡️⚔️🛡🗝🤫 Knows Mike Schwartz.
David Adrian @davidcadrian
2K Followers 424 Following Adding value @googlechrome security. Host @scwpod, cofounder of @censysio. “Refreshing”. "Ruthlessly practical". Go blue!
Gema Frier😋 @JoergerAli48317
42 Followers 1K Following Life is short so laugh often ✨ Creating my own sunshine 🌈 Collecting smiles not things ✈️ Here to spread love 😊 Living gratefully 🙏
Irvweaxip @Irvweaxip16655
30 Followers 717 Following life is also so, we go to curse, to discourage. Not as good as calm and peaceful to deal with life.
🄲🅈🄱🄴🅁 ... @Cyber_Asia_
4K Followers 62 Following Follow us for the latest #cybersecurity news in Asia.
Adrian @AdrianGH_97
5 Followers 236 Following
Ecirno @Ecirno972
29 Followers 1K Following
Ormweemfoo @Ormweemfoo0207
25 Followers 2K Following
Lena didenko @Lenadidenk66274
68 Followers 1K Following 🪖💣💣 В Україні ми разом захистимо нашу землю Славу Україну 💛💙 офіцер 🔫 EOD солдат свободи 🪖💪🇺🇦
Hagu @Hagu5272987
5 Followers 683 Following
Zoe Braiterman @zbraiterman
5K Followers 3K Following Web3 Co-Founder @web3enabler @SkyProtocolOrg @MutualKnowledge / @owasp @infosecgirls @GlobalWIC Advisor @snyksec Ambassador
Olavawt @Olavawt93212
40 Followers 1K Following
Shioquel @shioquel41497
32 Followers 1K Following
Mito Kehayov @mito_kehayov
21 Followers 465 Following 🇪🇺 / 🇧🇬 / 🇦🇹 / 🇨🇦 - IT Security Engineer. - Statistically estimates cybersecurity risk. - Cuts his nails without anesthetic.
Lord Roger1 @Roger1Lord1960
872 Followers 7K Following Join our journey through the universe empowering men for their goals☄️ _Change is constant_ #universal 🌎 It's the desire to serve that makes a leader
Krystal @Krystal765217
149 Followers 624 Following
Joseph Slim @Josephslim1280
688 Followers 1K Following
Tekes @TekesOjurlam
54 Followers 5K Following
LillianMalan @Ym60pEOr9U0jN9O
66 Followers 7K Following
Smoarue @SmoarueK4P
31 Followers 723 Following
Scosorn @ScosornKd6CipL
69 Followers 7K Following
Queppeausw @QueppeauswHrJ2
72 Followers 2K Following
IvyAdams @xhGBKo7r0hj68
73 Followers 7K Following
Shirley @SearsesontIpnX
39 Followers 3K Following
Shirley @TenirnNW4Klh
17 Followers 3K Following
Derwin @miyafujimy71296
85 Followers 7K Following
yeah @mywayornoway27
17 Followers 2K Following
LeBron @LeBroncash
235 Followers 3K Following I am a nurse | cyber security researcher | bug bounty hunter | ethical hacker
Harshil Shah @Harshil13781619
6 Followers 644 Following
EmmaDryden @HkMp75jonZ2Vl
65 Followers 7K Following
𝗛𝗔𝗥⚡︎�... @harsha_gv
26 Followers 2K Following Namaste ★✨ Cybersecurity | Cloud DevSecOps Engineer✨ Passionate about programming and security✨ Design Thinker✨ @vhsindia member✨ Love All, Serve All ♡✨
Lisa @nizukayume98725
35 Followers 3K Following
authzed @authzed
2K Followers 1K Following Creators of SpiceDB: https://t.co/oSDTIhg5xi Check out our upcoming Authorization Infrastructure Event: https://t.co/wJytnt14sF
Cynthia Thomas @_techcet_
956 Followers 937 Following Product Management @GoogleCloud. @SmithEngQueens Alum. Opinions are my own.
🍻 @realDonaldLund
11 Followers 309 Following
CoralEve @M76E771o9b4X1
49 Followers 6K Following
Tutakath @tutakath37322
76 Followers 7K Following
FOU @FOU028793918519
36 Followers 4K Following
Joe Rozner @jrozner
2K Followers 659 Following Startups, hacking, snowboarding. I build shit in Los Angeles. CEO & Co-Founder Based Security
Stephen Cobbe @StephenCobbe
240 Followers 2K Following
Adam Schaal @clevernyyyy
896 Followers 750 Following AppSec @awscloud · Research · OSCP · CTFs · Speaker · Husband/Father · Founder: @_kernelcon_ and @defcon402 Organizer: @locomocosec
LindaII. @9gLMEbelrTJRS9
33 Followers 3K Following
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Scott Piper @0xdabbad00
19K Followers 317 Following https://t.co/EXe2MI2DLm Cloud security historian. Developed https://t.co/ZXFwkuxUp4, CloudMapper, and Parliament. Organizer for @fwdcloudsec. Researcher at @wiz_io ✦
Sam Curry @samwcyo
97K Followers 1K Following Hacker, bug bounty hunter. Run a blog to better explain web application security.
Jane Manchun Wong @wongmjane
169K Followers 3K Following “The woman scooping Silicon Valley” — BBC, Security Researcher / Technology Blogger
Matthew Green is on B... @matthew_d_green
150K Followers 1K Following I teach cryptography at Johns Hopkins. Mostly on BlueSky these days at https://t.co/GI4QlxZr2S.
Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Adriana Porter Felt @__apf__
64K Followers 928 Following I like writing silly Tweets, but that doesn't pay so I also type at @googledeepmind. Principal Engineer. ex-@googlechrome. volunteer @2ndharvest. 🇺🇸🇨🇷
Thomas H. Ptacek @tqbf
33K Followers 611 Following Don't look at me sideways. Don't even look me straight on. bsky:@sockpuppet.org
Kinnaird McQuade 💻... @kmcquade3
6K Followers 2K Following Chief Security Architect @BeyondTrust. Follow for AI, Hacking, Startups. Founded @NightVision_inc. Ex @Square, @Salesforce 🇵🇭🇺🇸 wrote Cloudsplaining
Internal Tech Emails @TechEmails
584K Followers 886 Following Internal tech industry emails that surface in public records. 🔍
Colm MacCárthaigh @colmmacc
35K Followers 2K Following VP / Distinguished Engineer at Amazon Web Services. Also: Open Source and Apache, Cryptography, Irish Music, mediocre Photography.
briankrebs @briankrebs
333K Followers 2K Following Independent investigative journalist. Author of 'Spam Nation,' a NYT bestseller. Former Washington Post reporter. Mastodon: https://t.co/fTKNavlMwp
Zoë Schiffer @ZoeSchiffer
93K Followers 1K Following Director of Business & Industry at WIRED. Author of Extremely Hardcore: Inside Elon Musk’s Twitter. Signal zoeschiffer.87
haroon meer @haroonmeer
16K Followers 3K Following Security Geek at Thinkst. We build https://t.co/Sv6Gp3sG6b
Matt Fuller @matthewdfuller
2K Followers 1K Following 💭 Building https://t.co/qF4lN20a4l (better AWS console), https://t.co/dRqqZlMIFL ("open in AI" links) 🛡️ Cloud Security EM @Stripe 🤝 Ex-Founder @CloudSploit_ (sold)
Marco Lancini @lancinimarco
6K Followers 371 Following 💼 Principal Security Engineer 💬 I tweet about Cloud Security and technical leadership ✍🏻 Subscribe to https://t.co/MR69KiF8RH 📚 https://t.co/TrQKzxfnYg is out now!
Travis McPeak @travismcpeak
3K Followers 1K Following Security, mgmt, startups, investing, 🏋️♂️, 🚵. Founder/CEO @Resourcely prev: @databricks, @netflix; He.
Dylan @InsecureNature
3K Followers 236 Following Security researcher, public speaker and founder. Forbes 30 Under 30 Truffle Security @trufflesec https://t.co/vxEH7Cftbg Prev @Netflix
Jason Craig - infosec... @3141592f
797 Followers 674 Following Extremely Hardcore full spectrum middle manager. ex red team, blue team @ Pinterest, Dropbox , Facebook, Yahoo!, etc⚡️⚔️🛡🗝🤫 Knows Mike Schwartz.
bugcrowd @Bugcrowd
187K Followers 6K Following The leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
Zenity @zenitysec
833 Followers 48 Following Zenity is the first security and governance platform purpose-built for AI agents - spanning SaaS, Cloud, and Endpoint
Michael Bargury @mbrg0
8K Followers 484 Following Breaking AI. Hacked Copilot, hijacked ChatGPT. Building @zenitysec.
Tamir Ishay Sharbat @tamirishaysh
608 Followers 43 Following
Ezra Klein @ezraklein
2.5M Followers 1K Following Columnist, @NYTOpinion Author, "Why We're Polarized" Host of "The Ezra Klein Show" podcast
Derek Thompson @DKThomp
243K Followers 2K Following Sign up for my new newsletter! (Link below) Also: Co-author of Abundance, host of Plain English, and contributing writer at The Atlantic.
Cloudflare Developers @CloudflareDev
45K Followers 123 Following Have questions, or building something cool with Cloudflare's Developer products? We're here to help. For help with your account please try @CloudflareHelp
Dane Knecht 🦭 @dok2001
20K Followers 2K Following I help invent the future. CTO @cloudflare. Angel investor.
Joe Weisenthal @TheStalwart
418K Followers 6K Following One half of Bloomberg's Odd Lots Podcast. One quarter of Light Sweet Crude.
Ryan Petersen @typesfast
251K Followers 2K Following Founder and CEO of Flexport: We’re making global logistics as simple and reliable as flipping a light switch.
Permify @GetPermify
300 Followers 37 Following Open-source authorization service based on Google Zanzibar.
authzed @authzed
2K Followers 1K Following Creators of SpiceDB: https://t.co/oSDTIhg5xi Check out our upcoming Authorization Infrastructure Event: https://t.co/wJytnt14sF
Brookland Civic @BrooklandCivic
2K Followers 323 Following We❤️Brookland. Our Mission: to provide a forum for advancing the interests of residents on issues affecting the Brookland community. Join for only $11/yr.
Dave Wasserman @Redistrict
607K Followers 1K Following Senior Editor & Elections Analyst of the nonpartisan @CookPolitical Report w/ @AmyEWalter. Nerd for 🗺️ maps, ⛷️ ski slopes & 🎻 trad tunes. Has seen enough.
David Dworken @ddworken
509 Followers 134 Following Security at Anthropic | Former Security Engineer at Salesforce, Snap, Datadog, Keybase, Google | https://t.co/bcVSpNtgvN | Opinions my own
Artur Janc @arturjanc
2K Followers 350 Following Making the web platform more secure and private, and managing part of @Google's Information Security Engineering team in my spare time.
Person @ndm
2K Followers 14 Following
Adam Schaal @clevernyyyy
896 Followers 750 Following AppSec @awscloud · Research · OSCP · CTFs · Speaker · Husband/Father · Founder: @_kernelcon_ and @defcon402 Organizer: @locomocosec
XBOW @Xbow
10K Followers 6 Following Bringing AI to offensive security by autonomously finding and exploiting web vulnerabilities. Watch XBOW hack things: https://t.co/D5Mco1u8zM
National Hurricane Ce... @NHC_Atlantic
1.3M Followers 77 Following Official operational X account of the National Hurricane Center for the Atlantic basin. More details: https://t.co/zaFMQs6z7j
Know Your Meme @knowyourmeme
629K Followers 392 Following Documenting all of internet culture. Trying to understand a meme? Tag us and we'll give you the scoop Check out our new shop! https://t.co/fp4sdT5bGG
Andrew Weissmann (wei... @AWeissmann_
338K Followers 3K Following Co-host of @MSNBC podcast "Prosecuting Donald Trump;” author of 2 NYT bestsellers "The Trump Indictments" and "Where Law Ends: Inside the Mueller Investigation”
Srikanth Narayan @srikanthatcache
507 Followers 88 Following Founder at @usecache. Amateur Photographer at https://t.co/6BzuiaOcTZ
Rami McCarthy @ramimacisabird
2K Followers 745 Following security, for the internet, at @wiz_io! opinionated about security. (he/him) @[email protected], bsky=https://t.co/fxycKAqA6t
Ian Carroll @iangcarroll
16K Followers 1K Following Founder at @SeatsAero. Travel/points, application security, security research, etc. https://t.co/q0VuCP7rXz
Boom Supersonic @boomaero
530K Followers 2K Following Building the world's fastest airliner, Overture — optimized for speed, safety, and sustainability.
Chainguard ⛓️ @chainguard_dev
6K Followers 117 Following The safe source for open source (& memes). Secure your software with zero CVE container images!
Chris Farris (@jcfarr... @jcfarris
2K Followers 464 Following Cloud Security nerd @fwdcloudsec Organizer | Warning: Snark ahead | @[email protected]
Copilot Money @copilotmoney
13K Followers 236 Following 2024 Apple Design Award finalist 🏆 Track spending, subscriptions, investments, and more. Available for iOS, Mac, & iPad. Support? Contact us through the app!
Zoo @zoodotdev
14K Followers 17 Following Get the full power of a professional CAD platform, enhanced with ML through Text-to-CAD. Zoo Design Studio for desktop is now free to download and explore.
Joe Stocker @ITguySoCal
8K Followers 1K Following Christian Family Man, CEO of Patriot Consulting (Microsoft Security Partner) Author of "Securing Microsoft 365" Microsoft MVP (Security) (2020-present)
Leif Dreizler @leifdreizler
2K Followers 2K Following Eng Manager at @semgrep 💻 co-host of @404pod 🎙
TrustOnCloud @trustoncloud
246 Followers 40 Following TrustOnCloud provide cloud control catalogs for each Cloud service; based on threat models, audit-ready, and always up-to-date.
Duolingo @duolingo
1.0M Followers 518 Following Free education for the world. Available on Android, iOS, and the web.
NightVision Security @Nightvision_inc
104 Followers 61 Following NightVision simplifies Web and API Security Testing with next-generation DAST Developers can identify ✨exploitable✨ vulnerabilities in 3-5 minutes in CI/CD 🚀
OpenSSF @openssf
6K Followers 29 Following Open Source Security Foundation (OpenSSF) https://t.co/uUpbn44G4Q Together, we're securing the #opensource ecosystem #OSSsecurity https://t.co/adjLU8dbk0
Truffle Security @trufflesec
4K Followers 1 Following The TruffleHog company We find credentials, with open source https://t.co/7CnEqo1inq https://t.co/8vZxthRRXX
404: Security Not Fou... @404pod
187 Followers 46 Following 404 – Security not Found Podcast: https://t.co/KKvbc2sLK8
Nathan McNulty @NathanMcNulty
17K Followers 1K Following Loves Jesus, loves others | Husband, father of 4, security solutions architect, love to learn and teach | Microsoft MVP | @TribeOfHackers | 🦋@nathanmcnulty.com
Teamsake @TeamsakeHQ
289 Followers 3 Following A simple, fun Slack app helping people thrive at work